Symantec Advanced Threat Protection and SentinelOne Singularity Identity compete in the cybersecurity market, specifically focusing on threat detection and endpoint protection. SentinelOne appears to have an edge due to its dynamic behavior-based threat detection and lightweight design, enhancing cloud-native operations.
Features: Symantec Advanced Threat Protection offers comprehensive endpoint-to-network protection with real-time threat analysis. It includes email and network intrusion detection and seamless integration capabilities. It also provides robust cloud networking and an active engine for advanced threat detection. SentinelOne Singularity Identity utilizes dynamic behavior-based threat detection, providing detailed incident visibility. The platform offers a unified console for managing environments and features lightweight design, ensuring efficient performance suitable for cloud-native security operations.
Room for Improvement: Symantec Advanced Threat Protection needs better scalability and a more user-friendly administration interface. Enhancements in reporting and customization options are also needed. SentinelOne Singularity Identity could improve endpoint management complexities and offer clearer licensing policies. Users have expressed the need for better support responsiveness and additional integration and network detection features.
Ease of Deployment and Customer Service: Symantec Advanced Threat Protection allows flexibility across on-premises, public cloud, and hybrid cloud environments, but Broadcom's acquisition has led to mixed customer support reviews, resulting in perceived declines in support quality. SentinelOne Singularity Identity specializes in cloud deployment, praised for responsive technical support and efficient ticketing processes, ensuring high customer satisfaction levels.
Pricing and ROI: Symantec Advanced Threat Protection is considered medium-priced with flexible licensing models, but some view it as expensive since corporate changes. Noted for long-term ROI, the product's perceived value is hindered by costs. SentinelOne Singularity Identity is perceived as cost-effective, often priced below competitors like CrowdStrike, and offers significant value despite initial costs. Its flexible licensing policy and pricing transparency enhance its ROI perceptions.
Singularity Identity, a component of the Singularity platform, provides threat detection & response (ITDR) capabilities to defend Active Directory and domain-joined endpoints in real-time from adversaries aiming to gain persistent, elevated privilege and move covertly. Singularity Identity provides actionable, high-fidelity insight as attacks emerge from managed and unmanaged devices. It detects identity misuse and reconnaissance activity happening within endpoint processes targeting critical domain servers, service accounts, local credentials, local data, network data, and cloud data. On-agent cloaking and deception techniques slow the adversary down while providing situational awareness and halting adversarial attempts at lateral movement. Singularity Identity helps you detect and respond to identity-based attacks, providing early warning while misdirecting them away from production assets.
Singularity Identity’s primary use case is to protect credential data and disrupt identity-based attacks. The most valuable function of Singularity Identity is its ability to misdirect attackers by providing deceptive data to identity-based recon attacks. Additionally, it can hide and deny access to locally stored credentials or identity data on Active Directory domain controllers.
Singularity Identity also provides rapid detection and respond to identity attacks, capturing attack activity and feeding it directly to the Singularity platform’s Security DataLake for enterprise-wide analysis and response.
By implementing Singularity Identity, organizations benefit from enhanced security, reduced credential-related risks, and improved user productivity. It detects and responds to identity-based attacks, ensuring only authorized individuals can access critical identity data. With its cloaking capabilities to hide identity stored locally on endpoints or in the identity infrastructure and it’s ability to provide decoy results to identity-based attacks, organizations can effectively secure their sensitive or privileged identities, resulting in improved overall identity security.
Symantec Advanced Threat Protection is a single unified solution that uncovers, prioritizes, and remediates advanced attacks. The product fuses intelligence from endpoint, network, and email control points, as well as Symantec’s massive global sensor network, to stop threats that evade individual security products. It leverages your existing Symantec Endpoint Protection and Symantec Email Security.cloud investments, so it does not require the deployment of any new agents. You can deploy a new installation of Symantec Advanced Threat Protection and start to discover suspicious activity in under an hour. Using the proven technology in Symantec Insight reputation based detection, Symantec SONAR behavioral analysis with the new Symantec Cynic sandbox and file analysis platform, Symantec Advanced Threat Protection provides better detection and prioritization than other vendors, allowing security analysts to “zero in” on just those specific security events of importance.
We monitor all Advanced Threat Protection (ATP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.